I just inherited responsibility for an ASG120 and got it current on firmware (9.408-1) and pattern (113909), so I am new to UTM configuration. The network configuration is strange. There is a switch on the WAN ahead of the ASG120 which splits it to two firewalls, one the ASG120, each having its own external IP Address and managing a different LAN subnet, e.g. 192.168.25.xxx and 192.168.0.xxx. I like the UTM Executive Report to identify network abusers, but the other firewall is not Sophos and offers nothing similar. I want to put the other firewall behind the ASG120 by connecting it to the open DMZ port to include its traffic in the report. My understanding is that IP Addresses in the DMZ LAN are exposed to the WAN, so I can just move the connection and remove the switch ahead of the two firewalls. I am suspicious it is not that easy and am asking for advice.
This thread was automatically locked due to age.